Security & Trust

Your money. Under lock, key, and biometric.

Apex Digital is authorised by the (fictitious) Financial Conduct Authority as an electronic money institution. Your eligible deposits are protected up to £85,000 under the Financial Services Compensation Scheme.

How we protect you

Bank-grade, without the bank-grade jargon.

AES-256 encryption at rest

Every piece of sensitive data — account numbers, personal details, card numbers — is encrypted with 256-bit AES before it touches a disk.

TLS 1.3 in transit

Every request between the app and our servers uses TLS 1.3 with certificate pinning. There's no downgrade path.

Biometric login

Face ID or fingerprint on every session, plus a 6-digit passcode. No password reuse, ever.

24/7 fraud monitoring

Our machine-learning models score every transaction in under 40 milliseconds. Anomalies get a push notification before the money moves.

Strong Customer Authentication

PSD2-compliant SCA on every online payment. Approve or reject with a single Face ID prompt.

FSCS protected

Eligible deposits held at Apex are protected up to £85,000 per person by the (fictitious) Financial Services Compensation Scheme.

Regulatory

The legal stuff, in plain English.

Apex Digital Ltd. is a demo company. In the real world, an electronic money institution or bank in the UK is authorised and regulated by the Financial Conduct Authority (FCA) and, for banks, the Prudential Regulation Authority (PRA).

Customer funds held in Apex e-money wallets would be safeguarded in segregated accounts at Tier 1 UK banking partners, distinct from Apex's own operating funds. Interest-bearing balances would be held with FSCS-protected partner banks, with deposits covered up to £85,000 per person per authorised institution.

We are ISO 27001 certified (aspirational — this is a demo), PCI-DSS Level 1 compliant for card data, and undergo penetration testing by an independent CREST-accredited firm every quarter. Our public bug bounty programme rewards responsibly disclosed vulnerabilities.

Reporting a vulnerability? Email security@apexdigital.example or submit via our bug bounty on HackerOne (demo).